[Samba] Winbind, again...

Konkol, Josh JKonkol at guidemail.com
Fri May 31 04:44:02 GMT 2002


Since it appears as though no one has responded, I'll give you my two cents.

Have you gotten winbind -t to work ??  If you secret is good then your
machine account is OK.  

I see in the logs one of the last entries is NT_STATUS_ACCESS_DENIED.  I
would bet that your username map isn't working correctly.  Can you verify
using smbstatus that your name _is_ getting mapped?  Are you including the
domain in the username map file?  I haven't tried mapping a domain user
before.  I would suggest that you disable the username map, then create a
new file as a user and see if you can modify it's permissions.

Even though it appears as though it's a winbind problem, I usually get
better info from the log.smbd file.  You should see your connection and
whether it gets mapped in there.


Good luck !!


-----Original Message-----
From: Christian [mailto:christian at dinator.com]
Sent: Friday, May 31, 2002 4:45 AM
To: Christian
Subject: Re: [Samba] Winbind, again...

Here is the log showing the winbind daemon starting and an unsuccessful "
wbinfo -u " command
My domain is GASA and the PDC is called FUEGO.

Help Please!!


----- Original Message -----
From: "Christian" <samba at dinator.com>
To: <samba at lists.samba.org>
Sent: Thursday, May 30, 2002 8:52 PM
Subject: [Samba] Winbind, again...

> I recently posted a mail about problems with winbind... I'll try to be
> specific:
> I have Redat 7.3
> Followed those steps:
> Compiled samba 2.2.4
> Configured nsswitch.conf and the winbind libraries
> Configured smb.conf:
>     winbind uid = 10000-20000
>     winbind gid = 10000-20000
>     winbind enum users = yes
>     winbind enum groups = yes
>     winbind use default domain = yes
>     username map = /etc/samba/smbusers (smbusers file contains: root =
> administrator)
>     domain admin group = root
> Joined the SAMBA server to the PDC domain
> Started successfully the winbindd daemon
> Started smbd daemon
> Problems:
> 1.- Can't run wbinfo -u, the error is " error looking up domain users "
> 2.- When adding a user permission in the security tab to a folder from a
> win2k client connected like administrator I have:
> [2002/05/29 18:16:13, 0] smbd/posix_acls.c:create_canon_ace_lists(774)
>  create_canon_ace_lists: unable to map SID
> S-1-5-21-2025429265-1580818891-682003330-1109 to uid or gid.
> By the way, before I compiled samba I used the package that came installed
> with Redhat 7.3 (samba 2.2.3, I think), with the same problem.
> If this is a problem with the winbind database, how may I fix it?
> Another idea?
> Thanks,
> Christian
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  http://lists.samba.org/mailman/listinfo/samba

More information about the samba mailing list